-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 11 Aug 2022 23:50:27 +0200 Source: graphicsmagick Architecture: source Version: 1.4+really1.3.38+hg16728-1 Distribution: unstable Urgency: high Maintainer: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changed-By: Laszlo Boszormenyi (GCS) <gcs@debian.org> Changes: graphicsmagick (1.4+really1.3.38+hg16728-1) unstable; urgency=high . * Mercurial snapshot, fixing the following security issues: - ThrowLoggedException(): dereference after NULL check, - ReadJP2Image(): division by float zero, - MagickXMakeMagnifyImage(): division by zero, - ScaleImage(): resource leak, - GetLocaleMessageFromTag(): out of bounds read, - DrawPrimitive(): out of bounds access, - ReadOnePNGImage(): use of uninitialized value, - ReadMNGImage(): heap use after free in CloseBlob(), - ReadMNGImage(): indirect leak, - ReadOnePNGImage(): indirect leak in MagickMallocCleared(). Checksums-Sha1: d68da7e944a9abdf717f971e77b7a3bae171470b 3251 graphicsmagick_1.4+really1.3.38+hg16728-1.dsc fe9441521d223935e8a5a1b5c0e0a3abcc3f4299 5973024 graphicsmagick_1.4+really1.3.38+hg16728.orig.tar.xz 06a5af279b556d676dda360f3f4f0179aacb2264 234 graphicsmagick_1.4+really1.3.38+hg16728.orig.tar.xz.asc a7d910217b0b04e2dfb5269a8d827fcebec76cfd 156500 graphicsmagick_1.4+really1.3.38+hg16728-1.debian.tar.xz Checksums-Sha256: f8f1cafb024991e00ffec78172cbe869fa4672be445a0931c235a32becde86c7 3251 graphicsmagick_1.4+really1.3.38+hg16728-1.dsc 9d7af9fd81ce685d7fef2cfbc4dd7597881546e1f3fc93050e71a21375faf046 5973024 graphicsmagick_1.4+really1.3.38+hg16728.orig.tar.xz c5992497b12c2cde97a6e297068165b55c07a068efccc5136ca3b230ca551430 234 graphicsmagick_1.4+really1.3.38+hg16728.orig.tar.xz.asc c45982029b8ab3b5ed2b7519cf4db54c347a479268e99b7c7af2bdd456a63849 156500 graphicsmagick_1.4+really1.3.38+hg16728-1.debian.tar.xz Files: 4b93399b0fcc5ed323990b7b9ff40757 3251 graphics optional graphicsmagick_1.4+really1.3.38+hg16728-1.dsc aedd4da0f6cc0f07d07ea44d2cd17340 5973024 graphics optional graphicsmagick_1.4+really1.3.38+hg16728.orig.tar.xz 798cbb8458734bd5e45547b599c650df 234 graphics optional graphicsmagick_1.4+really1.3.38+hg16728.orig.tar.xz.asc 5abbf288de40c06a5390acad219d2a6e 156500 graphics optional graphicsmagick_1.4+really1.3.38+hg16728-1.debian.tar.xz -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEfYh9yLp7u6e4NeO63OMQ54ZMyL8FAmL5AIQACgkQ3OMQ54ZM yL8pDQ//Q6AILWIXHBH7YPcwotRfdD1vrGF9hq0Gyav9sR0wmUImJUNFbW9rjqAE 2E/5gvl2dtgnRTogTKkKEuEvSi7vNmXPGRHmZR9UkXa1HpCzHnBR15Ar9HsQArks VlJBWZbLQW09+g/RfFfSgqSeN5VlmdG3J/XZsbCO/exZVnVGgSr9YCDTYdZwoSqS EIEjK8EDLqPJyvNBn1uypZA2VI/9q4LPsOJdip3UZm1qdXLBYpIcywrgQICAQvcR pSP0AMbaXFSOr2fUW9XaXf4hjFGMgFkN1NPhb4gOTa5mbUP/IYjkxaEvWG4//FmR aMPHAuBuaoK5frZdEQPbmNK9rTSb3YZuWpU5bQA4bzr72LTAyKF7dp1SmLRBGCH4 oAKmL8vP0oztkFVl7USQ1KBufUlUKD9weg7eiYHE5FNz9lRKosD0rpRtDEycJYsu s+QLLMmUMaGDcwhBkMMDkDmDHqT5zqAsFNyTwqNO2F7hRaFzn7gl/+Qk+PKJ1pBI Vu1uyCPGbvvPEGDMElauEFIz3E9iZedRJ8LfENiuFbtYUaq/zRs8c1goTxxieNn2 wUkxZLBWgAikasqs9/km6x4SuSlEO3FJspODSCIqe3rZiPP7VU6QsGDhF9TIjbgy m+lSu9RZcX9sdgTUeN82fjxfhhJgnizdswyXjjE8iMfcm+IjtLI= =9XlF -----END PGP SIGNATURE-----